Secure Bulletin Navigating the cyber sea with knowledge
Home
Latest news

Two Critical Flaws in a Popular WordPress Calendar Plugin Put 600,000+ Sites at Risk of Full Takeover

16 September 2026  |  dark6  |  Vulnerability

Two unauthenticated, maximum-severity vulnerabilities in the widely used 'The Events Calendar' WordPress plugin could let attackers seize full control of more than 600,000 websites without ever logging in....

>> read more

Attackers Are Quietly Cloning Domain Controllers’ Password Database — Then Deleting the Evidence

16 September 2026  |  dark6  |  Ransomware

Incident responders at Huntress have documented a stealthy attack pattern in which intruders use Windows' own shadow-copy tooling to clone and steal the Active Directory password database, then...

>> read more

Google Uncovers Attack Where AI Agents Ran an Entire Credential-Theft Operation With Almost No Human Help

16 September 2026  |  dark6  |  AI

Google Cloud researchers say they've observed attackers hand an autonomous AI agent framework a set of instructions and let it scan, exploit, and harvest more than 23,800 credentials...

>> read more

Cisco Email Gateway Zero-Day Gives Remote Attackers Root Control

15 September 2026  |  dark6  |  Vulnerability

Cisco is warning that attackers are exploiting a critical Secure Email Gateway zero-day to execute commands as root without authentication. Organizations should isolate management interfaces, apply Cisco’s remediation...

>> read more

FortiGate Exploit Opens Broadband Provider to Credential Theft and Network Pivoting

15 September 2026  |  dark6  |  Cybercrime

Researchers uncovered infrastructure indicating that attackers exploited a FortiGate SSL-VPN weakness during an intrusion targeting Thailand’s 3BB broadband provider. The operation combined perimeter access, privilege escalation, credential theft...

>> read more

Mass Scanning of Exposed Vite Servers Targets AWS and Azure Secrets

15 September 2026  |  dark6  |  Vulnerability

Attackers are automatically probing internet-accessible Vite development servers for environment files, cloud credentials and infrastructure secrets. F5 telemetry recorded about 32,000 raw events in August, highlighting the risk...

>> read more

Malicious Twitch Extension Leaks OAuth Tokens From 30,000 Browser Users

15 September 2026  |  dark6  |  Malware

A Twitch helper extension installed by about 30,000 Chrome and Firefox users was found sending active account tokens through operator-controlled servers. The incident shows how a seemingly convenient...

>> read more

Exploited Zero-Days and Perimeter Flaws Put Patch Triage Under Pressure

14 September 2026  |  dark6  |  Vulnerability

This week’s security picture is dominated by exploited Windows and Chrome zero-days, dangerous flaws in perimeter products and increasingly automated attack operations. Defenders need risk-based patch sequencing, exposure...

>> read more